Displaying information about deprovisioning Active Directory user accounts and Active Directory groups
The following properties are displayed for deprovisioning Active Directory user accounts and Active Directory groups:
Table 9: Deprovisioning data
Deprovisioning status |
Status of deprovisioning sequence through when an object is deleted. The data is loaded from on synchronization.
No deprovisioning |
The Active Directory object is enabled. |
Deprovisioning successful |
The Active Directory object was successfully deprovisioned |
Deprovisioning failed |
An error occurred deprovisioning the Active Directory object. | |
Deprovisioning date |
Status of deprovisioning sequence through an when a object is deleted. The information is loaded from the during synchronization. |
To display master data for deprovisioning an Active Directory user account
- Select the Active Directory | User accounts category.
- Select the user account in the result list.
-
Select the Change master data task.
- Select the tab.
To display master data for deprovisioning an Active Directory group
- Select the Active Directory | Groups category.
- Select the group in the result list.
-
Select the Change master data task.
- Select the tab.
Related topics
Restoring deprovisioned Active Directory user accounts and Active Directory groups in the One Identity Manager
You can restore deprovisioned Active Directory user account and Active Directory groups using One Identity Manager if required. The following methods are used to do this:
- Undo deprovisioning
- Restoring deleted objects
Both methods initiate a process for deprovisioning Active Directory objects in . The process finds the deprovisioning status, updates some of the Active Directory object properties, like the name and the One Identity Manager container and in the Active Directory database, and sets the Active Directory object status to "changed". All the Active Directory object properties are loaded in the One Identity Manager database by the next synchronization and changed to "published".
Detailed information about this topic
Undoing deprovisioning
Use this method to undo Active Directory user account and Active Directory group deprovisioning. You can use this method independent of the deprovisioning method implemented.
To undo Active Directory user account deprovisioning
- Select the Active Directory | User accounts | Deprovisioned accounts category.
- Select the user account in the result list.
- Select the Undo deprovisioning task.
- Confirm the security prompt with Yes.
- Confirm with OK.
To undo Active Directory group deprovisioning
- Select the Active Directory | Groups | Deprovisioned groups category.
- Select the group in the result list.
- Select the Undo deprovisioning task.
- Confirm the security prompt with Yes.
- Confirm with OK.
Related topics
Restoring deleted objects
You can use this method as an alternative for Active Directory user accounts and Active Directory groups you have deprovisioned using the method "Deprovision not delete". You find the deprovisioned Active Directory object, in this case, in the One Identity Manager database with status "Deleted".
To restore a user account
- Select the Active Directory | User accounts category.
- Select the user account in the result list.
- Click Undo delete in the result list toolbar.
To restore a group
- Select the Active Directory | Groups category.
- Select the group in the result list.
- Click Undo delete in the result list toolbar.
Related topics